MGASA-2022-0096 - Updated shapelib packages fix security vulnerability

Publication date: 11 Mar 2022
URL: https://advisories.mageia.org/MGASA-2022-0096.html
Type: security
Affected Mageia releases: 8
CVE: CVE-2022-0699

Double-free vulnerability in contrib/shpsort.c. (CVE-2022-0699)

References:
- https://bugs.mageia.org/show_bug.cgi?id=30114
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/6B3VSER4WPCPULJGLJVI75SE2NKX4RQH/
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-0699

SRPMS:
- 8/core/shapelib-1.5.0-2.1.mga8

Mageia 2022-0096: shapelib security update

Double-free vulnerability in contrib/shpsort.c

Summary

Double-free vulnerability in contrib/shpsort.c. (CVE-2022-0699)

References

- https://bugs.mageia.org/show_bug.cgi?id=30114

- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/6B3VSER4WPCPULJGLJVI75SE2NKX4RQH/

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-0699

Resolution

MGASA-2022-0096 - Updated shapelib packages fix security vulnerability

SRPMS

- 8/core/shapelib-1.5.0-2.1.mga8

Severity
Publication date: 11 Mar 2022
URL: https://advisories.mageia.org/MGASA-2022-0096.html
Type: security
CVE: CVE-2022-0699

Related News